The web application portal of the Cobham EXPLORER 710, firmware version 1.07, sends the login password in cleartext. This could allow an unauthenticated, local attacker to intercept the password and gain access to the portal.
References
Link | Resource |
---|---|
https://kb.cert.org/vuls/id/719689/ | Third Party Advisory US Government Resource |
https://kb.cert.org/vuls/id/719689/ | Third Party Advisory US Government Resource |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 04:51
Type | Values Removed | Values Added |
---|---|---|
References | () https://kb.cert.org/vuls/id/719689/ - Third Party Advisory, US Government Resource |
Information
Published : 2019-10-10 20:15
Updated : 2024-11-21 04:51
NVD link : CVE-2019-9532
Mitre link : CVE-2019-9532
CVE.ORG link : CVE-2019-9532
JSON object : View
Products Affected
cobham
- explorer_710
- explorer_710_firmware
CWE
CWE-319
Cleartext Transmission of Sensitive Information